CVE

Id
7349  
CVE No.
CVE-2003-0522  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in ProductCart 1.5 through 2 allow remote attackers to (1) gain access to the admin control panel via the idadmin parameter to login.asp or (2) gain other privileges via the Email parameter to Custva.asp.  
Phase
Assigned (20030708)  
Votes
None (candidate not yet proposed)  
Comments